Malware

Malware.AI.3932107150 malicious file

Malware Removal

The Malware.AI.3932107150 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3932107150 virus can do?

  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Malware.AI.3932107150?


File Info:

name: ED36B8FD2E4BF7DC20AD.mlw
path: /opt/CAPEv2/storage/binaries/b7c688787a02013dab7ae924d334c2782324f5cf02d38fa9c83b3e58a591ef0b
crc32: 20322707
md5: ed36b8fd2e4bf7dc20ad6d8562095c68
sha1: 3a6addfa4f8fba07403dab47f0fba0ad98988bc6
sha256: b7c688787a02013dab7ae924d334c2782324f5cf02d38fa9c83b3e58a591ef0b
sha512: 11e208201854f0fc232d2130bc96b17dfb92dfda24cbda21e471cb2d31e1914587ec553f65af574e3acf760beb8619be919a760e12a0fa1caa1697e1145a2020
ssdeep: 49152:GlsNSkUs6l9Y4ZJNcIzjv0SzlR0h/W7a/KO:G2sA4ZJibSpOhO7lO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CB95331680C9C46FE9A05F30D7D20783B7727C79646EBE2D6BC76678093E492393432A
sha3_384: df79e81237af0aa12ef98bbf8c0125631022f02917fd9953090cdc1d755f1b4305b89228d208cdc848fc6bae5ef80bc7
ep_bytes: 558bec83ec4456ff155c1100018bf08a
timestamp: 2003-03-25 07:08:18

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Win32 Cabinet Self-Extractor
FileVersion: 6.00.3790.0 (srv03_rtm.030324-2048)
InternalName: Wextract
LegalCopyright: (C) Microsoft Corporation. All rights reserved.
OriginalFilename: WEXTRACT.EXE
ProductName: Microsoft(R) Windows(R) Operating System
ProductVersion: 6.00.3790.0
Translation: 0x0804 0x04b0

Malware.AI.3932107150 also known as:

BkavW32.Common.07355411
LionicTrojan.Win32.Generic.4!c
AVGWin32:Trojan-gen
SkyhighGenericRXAR-TI!771555740153
McAfeeArtemis!ED36B8FD2E4B
Cylanceunsafe
SangforTrojan.Win32.Agent.Vmhd
Elasticmalicious (moderate confidence)
APEXMalicious
AvastWin32:Trojan-gen
IkarusTrojan-PSW.Legendmir
JiangminHackTool.Exploiter.h
Antiy-AVLTrojan/Win32.SGeneric
KingsoftWin32.Troj.Undef.a
MicrosoftTrojan:Win32/Zpevdo.B
XcitiumMalware@#1qqi1fo18fo7k
GoogleDetected
MalwarebytesMalware.AI.3932107150
TrendMicro-HouseCallTROJ_GEN.R002H0CA824
RisingTrojan.Win32.Generic.1531CFD7 (C64:YzY0OmUUE5YAgmfs)
FortinetRiskware/PassDic
DeepInstinctMALICIOUS

How to remove Malware.AI.3932107150?

Malware.AI.3932107150 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment